|
The IT Security Engineer will support the organization's cybersecurity program with a focus on IT security operations and Governance, Risk, and Compliance (GRC) within a highly regulated medical device environment. This entry-level role provides hands-on experience in protecting sensitive data, manufacturing systems, and regulated products, while learning industry standards such as FDA cybersecurity guidance, ISO 13485, and NIST frameworks. The Analyst will gain exposure to both technical security controls and risk/compliance processes, contributing to the organization's mission of ensuring patient safety and product integrity. Key Responsibilities IT Security Operations Support
Assist in monitoring security alerts and events using SIEM/XDR tools (e.g., Microsoft Sentinel, Defender) Support incident response activities including triage, documentation, and escalation Help maintain endpoint security, vulnerability scanning, and patch tracking Participate in security investigations under guidance of senior analysts
Governance, Risk & Compliance (GRC)
Support development and maintenance of security policies, procedures, and standards Assist in performing risk assessments for IT systems, applications, and medical devices Help track and document risks, remediation plans, and control effectiveness Contribute to audit preparation and evidence gathering for: FDA cybersecurity requirements, ISO 13485 / ISO 27001, NIST Cybersecurity Framework Maintain compliance documentation and assist in control testing activities
Data Protection & Security Controls
Support implementation and monitoring of controls for: Sensitive data (PHI, PII, IP), Access control and identity management Assist with user access reviews and least privilege enforcement Help monitor data protection tools (DLP, encryption, logging)
Product & Regulatory Awareness
Learn fundamentals of medical device cybersecurity and secure product lifecycle practices Assist in documenting security requirements for systems supporting product development and manufacturing Support tracking of vulnerabilities and issues impacting device software or connected systems
Security Awareness & Training
Help coordinate cybersecurity awareness campaigns across the organization Support phishing simulations and user training initiatives Promote a culture of security and compliance awareness
Documentation & Reporting
Maintain records of incidents, risks, and compliance activities Assist in developing dashboards and reports on Risk posture, Compliance status, and Security metrics
Job Qualifications
Bachelor's Degree in Cybersecurity, Information Technology, Information Systems or a related field In Lieu of a Bachelors degree, candidates must have 3-5 years of experience Cybersecurity, Information Technology, Information Systems
Preferred Experience
Basic understanding of networking and operating systems, information security concepts (CIA triad, access control, vulnerabilities) Strong interest in cybersecurity within regulated environments Strong organizational, analytical, and communication skills
Familiarity with security frameworks (NIST CSF, ISO 27001) and Basic compliance concepts (audit, controls, risk) Exposure (academic or hands-on) to: SIEM tools, vulnerability scanning tools, identity and access management Interest in medical devices, healthcare technology, or manufacturing environments
Key Skills Developed
Security monitoring and incident response fundamentals Risk assessment and compliance processes Regulatory awareness (FDA, ISO, NIST) Security documentation and audit preparation Communication of technical risk in a business context
Key Performance Indicators (KPIs)
Accuracy and timeliness of risk and compliance documentation Participation in incident response and alert triage Completion of assigned audit and compliance support tasks Quality of reports and documentation maintained Progress in training and certification milestones
This position is not eligible for employer-visa sponsorship Disclosure as required by applicablelaw, the annual salary range for this position is $69,900 - $108,300. The actual compensation may vary based on geographic location, work experience, education and skill level. The salary range is CONMED's good faith belief at the time of this posting. This job posting is anticipated to close on August 8, 2026. We may, however, extend this time period, in which case the posting will remain available on careers.conmed.com. Please submit your application as soon as possible as we will be reviewing applications on a rolling basis as we receive them. Benefits: CONMED offers a wide array of benefits to fit your unique needs. Visit our Benefits Page for more information.
- Competitive compensation
- Excellent healthcare including medical, dental, vision and prescription coverage
- Short & long term disability plus life insurance -- cost paid fully by CONMED
- Retirement Savings Plan (401K) -- CONMED matches your contributions dollar for dollar, with the potential for up to 7% per pay period
- Employee Stock Purchase Plan -- allows stock purchases at discounted price
- Tuition assistance for undergraduate and graduate level courses
Know someone at CONMED? Have them submit you as a referral before applying for this position to be eligible for our Employee Referral Program incentives! CONMED is an equal opportunity employer and does not discriminate on the basis of any legally protected status or characteristic. Protected veterans and individuals with disabilities are encouraged to apply. The Know Your Rights: Workplace Discrimination is Illegal Poster reaffirms this commitment. Colorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information. If you feel you need a reasonable accommodation pursuant to the ADA, you are encouraged to contact us at 800-929-7176 option #5.
|